[CLSA-2026:1778836031] libsoup: Fix of CVE-2026-2708
Type:
security
Severity:
Moderate
Release date:
2026-05-16 17:30:12 UTC
Description:
- CVE-2026-2708: reject duplicate Content-Length headers with different values to prevent HTTP request smuggling per RFC 9110 section 7.7
Updated packages:
  • libsoup-2.72.0-10.el9_6.3.tuxcare.els7.i686.rpm
    sha:7f93e617f93566171deea4f7d35c1dcfae6f70150c314dbef5ab9bf3a161c8bc
  • libsoup-2.72.0-10.el9_6.3.tuxcare.els7.x86_64.rpm
    sha:bf49a3dbc200b476a37e1c9cf5b694435f3c6057af74f604a0be716915f3cc58
  • libsoup-devel-2.72.0-10.el9_6.3.tuxcare.els7.i686.rpm
    sha:6b6d8a17c8ba0043a7f991fdead191891aa78bd818be263ba89444b80bc70edc
  • libsoup-devel-2.72.0-10.el9_6.3.tuxcare.els7.x86_64.rpm
    sha:cb570d2a9dc4f02c3815b6c776d72d311afab5ed095a4033aa05238f6992b677
  • libsoup-doc-2.72.0-10.el9_6.3.tuxcare.els7.noarch.rpm
    sha:4360dfe6dc27f5dc66de8991d1a3238849c1941202943281dd74b77040268cb3
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.